Lead Security Engineer II, Splunk Security Content Visualization Expert (Secret Clearance)
- Design, customize, configure, and optimize Splunk dashboards, applications, alerts, and visualizations to improve SOC performance and maturity.
- Develop advanced reporting and visualizations to support SOC operations and stakeholder requirements.
- Build, test, document, implement, and tune security content across the full lifecycle, including data models, dashboards, correlation logic, searches, and alert notifications.
- Perform advanced searches and analysis in large-scale SIEM environments.
- Analyze, trend, and filter security log data from multiple sources, including firewalls, IDS/IPS, hosts, load balancers, and other security and monitoring tools.
- Develop and enhance custom SPL using macros, lookups, regex, and network-based logic.
- Support SOP development, updates, implementation, and training.
- Mentor junior and mid-level analysts on SOC processes, content development, and detection practices.
- Identify and use indicators of compromise (IOCs) and network traffic indicators to detect anomalous activity, including lateral movement.
- Support enterprise logging use cases across application, operating system, and security device logs.
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
- Bachelor's Degree required.
- Active Secret Clearance required.
- Ability to work onsite in Herndon, VA up to 3 days a week.
- 3+ years of experience within the following:
- Extensive experience designing and configuring SIEM applications, dashboards, and visualizations for medium-to-large SOC environments.
- Extensive experience developing advanced reporting, searches, alerts, and dashboards in Splunk or similar enterprise SIEM platforms.
- Extensive experience analyzing high volumes of security log data from diverse enterprise security technologies.
- Experience optimizing SIEM security content and implementing SOC processes and SOPs.
- Experience mentoring junior and mid-level analysts.
- Experience with enterprise logging solutions, regex, custom log parsing, and network security tools.
- Ability to travel 15%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
- Candidate must possess one of the following certifications: CISSP, GCIH, GCFA, GPEN, GWAPT, GCIA, or equivalent.
Recommended Jobs
Production Operator
Production Operator JOB-10046880 Anticipated Start Date June 29 , 2026 Location Colonial Heights, VA Type of Employment Contract Hire Employer Info Founded in …
Accountant--Fixed Assets
Public Trust: None Requisition Type: Regular Your Impact Own your opportunity to be at the center of GDIT’s business operations. Make an impact by collaborating across functions to make mi…
Dental assistant
Join Our Team as a Dental Assistant at Contemporary Dentistry of Virginia! Contemporary Dentistry of Virginia, a thriving family dental practice in Fairfax, is seeking a compassionate and skilled Den…
Project Manager in Hampton Roads (Newport News)
Exciting opportunity with Huge Growth Potential & Great Benefits! This Jobot Job is hosted by: Morgan Cortez Are you a fit? Easy Apply now by clicking the Apply button and sending us your resume…
Service Advisor
We are currently seeking highly motivated, customer and goal oriented individuals to join our team as a Service Advisor. Experience preferred and CDk knowledge is desirable. Ability to work evenings …
Risk Manager - Managed Service Provider Support
Risk Manager Role Summary The Risk Manager leads identification, analysis, prioritization, and mitigation of risks, issues, and opportunities across supported systems. Key Responsibilities ~Devel…
Caregiver- URGENTLY HIRING (Haymarket)
Alliance Home Care, LLC is a small business that is supportive, inclusive, professional and our goal is to look for compassionate and caring caregivers, who are dedicated to having a positive impact o…
Dispatch Coordinator - Commercial Division
Join a dynamic team in the Commercial Division as a Dispatch Coordinator, where you will play a key role in ensuring the smooth and efficient scheduling of commercial moving and storage operations. T…
Travel Nurse RN - Emergency Room (ER) / Trauma - $1,787 to $1,897 per week in Salem, VA
Registered Nurse (RN) | Emergency Room (ER) / Trauma Location: Salem, VA Agency: AMN Healthcare Pay: $1,787 to $1,897 per week Shift Information: Nights - 3 days x 12 hours Con…
Junior Data Analyst / Developer
Job Description Job Description Description: The Junior Analyst / Developer will provide analytical and instructional support while developing Army Vantage skills through hands-on execution. E…